> -----Original Message----- > From: Rickard Öberg [mailto:[EMAIL PROTECTED]] > > But the security problem is not with pages really, but with > actions. If > the request is stopped at the View stage it's already too > late: you may > have executed code that the user was not allowed to execute. > > /Rickard >
I'm thinking we could use your idea of packages, and map packages to certain paths, then you could easily secure by package. Jason ------------------------------------------------------- This sf.net email is sponsored by:ThinkGeek Welcome to geek heaven. http://thinkgeek.com/sf _______________________________________________ Opensymphony-webwork mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/opensymphony-webwork